HomeResources › Threat Monitor

Threat Monitor

 

« Back to list

Troj.Exploit.JS.Agent.bee

 
Aliases:
Pattern:201101271330
Threat Type Propagation Methods Systems Affected Risk Level
  • Exploit
  • Exploit Vulnerability
  • Windows NT
  • Windows XP
  • Windows 2000
  • Windows 95/98/ME
  • MS-DOS
  • Other
  • Low
 
Microsoft Internet Explorer is prone to a remote code execution vulnerability.
The vulnerability is caused due to an invalid flag reference within the mshtml.dll module when processing a Cascading Style Sheets (CSS) "clip" attribute with a specific position. This can be exploited to overwrite a byte in a virtual table pointer. By persuading a victim to visit a malicious Web page, a remote attacker could exploit this vulnerability to access an invalid flag reference to a freed object and execute arbitrary code on the system with the privileges of the victim.

Affected: Microsoft Internet Explorer 8.0
Microsoft Internet Explorer 7.0
Microsoft Internet Explorer 6.0

Back to Top